advanced_real_estate_script_project advanced_real_estate_script CVE Vulnerabilities (13)

CVEs: 13 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting advanced_real_estate_script_project advanced_real_estate_script (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 113 of 13 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2019-20337 In PHP Scripts Mall advanced-real-estate-script 4.0.9, the news_edit.php news_id parameter is vulnerable to SQL Injection. [email protected] 7.2 1.04% 2020-01-05 2026-06-16
CVE-2019-20336 In PHP Scripts Mall advanced-real-estate-script 4.0.9, the search-results.php searchtext parameter is vulnerable to XSS. [email protected] 6.1 0.70% 2020-01-05 2026-06-16
CVE-2018-15189 PHP Scripts Mall advanced-real-estate-script has XSS via the Name field of a profile. [email protected] 5.4 0.55% 2018-08-10 2026-06-16
CVE-2018-15188 PHP Scripts Mall advanced-real-estate-script 4.0.9 allows remote attackers to cause a denial of service (page structure loss) via crafted JavaScript code in the Name field of a profile. [email protected] 6.5 0.94% 2018-08-10 2026-06-16
CVE-2018-15187 PHP Scripts Mall advanced-real-estate-script 4.0.9 has CSRF via edit-profile.php. [email protected] 8.0 0.45% 2018-08-10 2026-06-16
CVE-2018-5078 Online Ticket Booking has XSS via the admin/eventlist.php cast parameter. [email protected] 4.8 0.49% 2018-01-03 2026-06-16
CVE-2018-5077 Online Ticket Booking has XSS via the admin/movieedit.php moviename parameter. [email protected] 4.8 0.49% 2018-01-03 2026-06-16
CVE-2018-5076 Online Ticket Booking has XSS via the admin/newsedit.php newstitle parameter. [email protected] 4.8 0.49% 2018-01-03 2026-06-16
CVE-2018-5075 Online Ticket Booking has XSS via the admin/snacks_edit.php snacks_name parameter. [email protected] 4.8 0.49% 2018-01-03 2026-06-16
CVE-2018-5074 Online Ticket Booking has XSS via the admin/manageownerlist.php contact parameter. [email protected] 4.8 0.49% 2018-01-03 2026-06-16
CVE-2018-5073 Online Ticket Booking has CSRF via admin/movieedit.php. [email protected] 6.8 0.40% 2018-01-03 2026-06-16
CVE-2018-5072 Online Ticket Booking has XSS via the admin/sitesettings.php keyword parameter. [email protected] 4.8 0.49% 2018-01-03 2026-06-16
CVE-2017-17603 Advanced Real Estate Script 4.0.7 has SQL Injection via the search-results.php Projectmain, proj_type, searchtext, sell_price, or maxprice parameter. [email protected] 9.8 3.05% 2017-12-13 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence